The ext4fillsuper function in fs/ext4/super.c in the Linux kernel through 4.9.8 does not properly validate meta block groups, which allows physically proximate attackers to cause a denial of service (out-of-bounds read and system crash) via a crafted ext4 image.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2016-10208.json"
[
{
"signature_type": "Line",
"signature_version": "v1",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@3a4b77cd47bb837b8557595ec7425f281f2ca1fe",
"digest": {
"line_hashes": [
"7435457002735041185925731339298032682",
"90852907419238248484904045368290131309",
"336758376172189270359065338062850487416",
"92927590624655463018251494695673323707"
],
"threshold": 0.9
},
"id": "CVE-2016-10208-b42e5a8a",
"deprecated": false,
"target": {
"file": "fs/ext4/super.c"
}
},
{
"signature_type": "Function",
"signature_version": "v1",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@3a4b77cd47bb837b8557595ec7425f281f2ca1fe",
"digest": {
"function_hash": "66951931953704722394360748123219898524",
"length": 25342.0
},
"id": "CVE-2016-10208-c81a150a",
"deprecated": false,
"target": {
"file": "fs/ext4/super.c",
"function": "ext4_fill_super"
}
}
]
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2016-10208.json"
[
{
"signature_type": "Line",
"signature_version": "v1",
"source": "https://github.com/torvalds/linux/commit/3a4b77cd47bb837b8557595ec7425f281f2ca1fe",
"digest": {
"line_hashes": [
"7435457002735041185925731339298032682",
"90852907419238248484904045368290131309",
"336758376172189270359065338062850487416",
"92927590624655463018251494695673323707"
],
"threshold": 0.9
},
"id": "CVE-2016-10208-bf620e47",
"deprecated": false,
"target": {
"file": "fs/ext4/super.c"
}
},
{
"signature_type": "Function",
"signature_version": "v1",
"source": "https://github.com/torvalds/linux/commit/3a4b77cd47bb837b8557595ec7425f281f2ca1fe",
"digest": {
"function_hash": "66951931953704722394360748123219898524",
"length": 25342.0
},
"id": "CVE-2016-10208-fd1cfae0",
"deprecated": false,
"target": {
"file": "fs/ext4/super.c",
"function": "ext4_fill_super"
}
}
]